Cybersecurity specialist embedded in Operational Technology, protecting industrial networks and IT assets on OT environments. You’ll design secure architectures, implement controls (firewalls, IDS/IPS, MFA), manage vulnerabilities, maintain asset inventories, support incident response, and ensure compliance with IEC 62443/NIST 800-82, partnering with operations, engineering, and vendors to keep critical systems resilient.
Overview job description
This role sits within the Information Security function and partners closely with Operations, Engineering and third-party vendors to strengthen cybersecurity across Operational Technology (OT) environments. You’ll protect and improve the security posture of IT assets operating on OT networks—without owning or modifying control logic, instrumentation, or process control configurations.
Main duties and responsibilities
OT network architecture & secure design
- Design and evolve secure OT network architectures and patterns.
- Define OT security baselines, hardening standards and secure build guidelines.
- Review OT project designs to ensure cybersecurity requirements are embedded early.
- Implement and validate network segmentation approaches (zones/conduits, VLANs, etc.).
Implement and manage OT security controls
- Operate and tune OT firewalls and remote access controls (e.g., VPNs).
- Support IDS/IPS deployment and ongoing management.
- Deploy and maintain OT monitoring/visibility tooling.
- Implement strong authentication and access controls (including MFA where appropriate).
- Drive OT vulnerability management: discovery, assessment, remediation tracking and risk acceptance.
- Embed cybersecurity into OT project delivery (controls, design assurance, regulatory alignment).
- Govern third-party / vendor access into OT environments (process, approvals, monitoring).
- Actively contribute to cyber/OT risk assessments and improvement plans.
Asset visibility & hygiene
- Maintain accurate OT asset inventories (devices, OS versions, patch status, AV status, known vulnerabilities).
- Improve discovery and logging processes so asset data remains current and actionable.
Incident response & operational support
- Support OT incident handling alongside internal partners (SOC, infrastructure, application support).
- Provide technical input during investigations, containment and recovery, ensuring safe operations remain the priority.
Standards, governance & awareness
- Support compliance and alignment with recognised frameworks (e.g., IEC/ISA 62443, NIST 800?82, ISO 27001).
- Create and deliver OT security awareness/training materials.
- Champion good OT security behaviours and pragmatic, risk-based decision making.
About You
- Degree in Computer Science, Information Security, Engineering—or equivalent practical experience.
- 5+ years’ experience in cybersecurity, with demonstrable exposure to OT/industrial environments.
- Strong OT networking and industrial protocol awareness; comfortable working in live operational settings.
- Hands-on network security experience (firewalls, VLANs, segmentation, VPNs).
- Experience integrating OT/ICS data into SIEM/SOAR platforms (or strong familiarity with the approach).
- Confident stakeholder management across operations/engineering/vendors; able to communicate clearly and pragmatically.
- Incident handling experience, ideally with OT constraints and safety/availability considerations.
- Strong documentation and project delivery discipline.
- Working knowledge of Microsoft Active Directory and domain structures.
- Willingness to work offshore circa 90 days per year (ad hoc rather than fixed rotation)
Desirable Skills & Experiences
- Security certifications such as GICSP, CISSP, or equivalent.
- Current offshore working certification (or previous offshore experience).
- Exposure to major DCS/SCADA ecosystems (e.g., Honeywell, Yokogawa, Kongsberg).
- Understanding of emerging regulatory requirements (e.g., NIS2, Cyber Resilience Act).
- 2+ years specifically in OT/ICS cybersecurity roles.
- Broader ICS/OT knowledge (PLCs, SCADA, DCS, HMIs).
You must sign in to apply for this position.
